General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 778 Views
  • 0 replies
  • 0 Likes

Resolved! Security Policy Limit Alarms

I'm trying to setup an alarm to trigger is we have excessive drops on a firewall rule.

When looking at this functionality the Help section states:-

"Use Security Policy Tags to specify the tags for which the rule limit thresholds will generate alarms.

...

apackard by L4 Transporter
  • 4645 Views
  • 3 replies
  • 0 Likes

GameOver Zeus

Does PaloAlto provide any protection against this malware, either in downloading the virus, making the DNS quesries to the list of .ru domains that the FBI released on June 4th, or in the call backs that it makes?

Panorama - Simple Question

We are currently running Panorama on a VM and need to take it down to add more resources to it.  Will taking down Panorama or rebooting it have any affect on connectivity for the 2 PAN's that it manages?

SSL Decryption Certificate

For SSL Decryption does the cert on the PALO need to be issued from the same enterprise cert chain as the workstations, or does the cert on the workstation have to match the cert on the PALO exactly?  We have about 2000 workstations that have been is

...

markk96 by L3 Networker
  • 1623 Views
  • 1 replies
  • 0 Likes

Panorama without direct internet connection

Hi,

I have a setup where panorama is not allowed direct internet connection, therefore I would like a setup where a server in a DMZ sone gets the updates from Paloaltonetworks.com and my panorama installation gets the update from that server. Has anyb

...

kristian by L3 Networker
  • 2048 Views
  • 1 replies
  • 0 Likes

SSL Decryption Certificate

For SSL Decryption does the cert on the PALO need to be issued from the same enterprise cert chain as the workstations, or does the cert on the workstation have to match the cert on the PALO exactly?  We have about 2000 workstations that have been is

...

markk96 by L3 Networker
  • 1513 Views
  • 1 replies
  • 0 Likes

Resolved! issue with SSL decrypt-forward proxy

Customer Network configured with SSL decrypt-forward proxy. Now they can't able to browse more sites (eg:birdres.com, sap.snn,etc).

They were not satisfied with exclude ssl decrypt. (due to more no.of sites in exclude list). Is there any other way?

Th

...

Javith by L3 Networker
  • 4063 Views
  • 8 replies
  • 0 Likes

Application Groups "service" in security policy

I have the following scenario I came across and just curious if this is expected behavior. It is recommended when "whitelisting" and application to use the application-default service (so it only works on its default port), or if you are "blacklistin

...

froggyj by Not applicable
  • 3323 Views
  • 2 replies
  • 0 Likes

Resolved! ports unknown allowed

Hi all,

We have an application group that specifies the applications to allow from untrust to our DMZ. Mostly its just web browsing, ssl, pop and smtp. We are not allowing ms smb port 445 or Port 135 msrpc.

Our recent PCI security scans are telling us

...

how to see posted data sent by attackers

Hi..Is there a way to see content of posted data by attacker.For example content of Generic HTTP Cross Site Scripting Attempt or sql injection.Palo alto shows only the name of attack and some information about them

ikaratas by Not applicable
  • 2821 Views
  • 3 replies
  • 0 Likes
  • 23986 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels